The US Department of Health and Human Services (HHS) has proposed rules to increase cybersecurity protections for electronic health data. The changes extend to HIPAA-regulated entities such as healthcare providers, insurers, and associated businesses, imposing stricter requirements around risk assessments, data encryption, and more. It will eliminate the “required” and “addressable” distinctions in the implementation specifications, making all violations mandatory. The public has until March 7, 2025, to submit comments on the proposal.

Anne Arundel government has made progress in securing systems since cyber incident, officials say – CBS News
Anne Arundel County government officials have reported making progress in securing systems following a cyber incident. Specific details of the incident were not provided, but